An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system.
We have already fixed the vulnerability in the following versions:
File Station 5 5.5.6.4791 and later
and later
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-25-09 |
|
History
Wed, 18 Jun 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Qnap
Qnap file Station |
|
| CPEs | cpe:2.3:a:qnap:file_station:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Qnap
Qnap file Station |
|
| Metrics |
cvssV3_1
|
Fri, 06 Jun 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 06 Jun 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers who have gained user access to compromise the security of the system. We have already fixed the vulnerability in the following versions: File Station 5 5.5.6.4791 and later and later | |
| Title | File Station 5 | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: qnap
Published: 2025-06-06T15:54:29.327Z
Updated: 2025-06-06T16:35:06.639Z
Reserved: 2025-03-12T08:12:28.507Z
Link: CVE-2025-29883
Updated: 2025-06-06T16:19:01.231Z
Status : Analyzed
Published: 2025-06-06T16:15:25.370
Modified: 2025-06-18T17:32:09.147
Link: CVE-2025-29883
No data.